Securing Smart Homes via Software-Defined Networking and Low-Cost Traffic Classification

被引:13
|
作者
Gordon, Holden [1 ]
Batula, Christopher [1 ]
Tushir, Bhagyashri [1 ]
Dezfouli, Behnam [1 ]
Liu, Yuhong [1 ]
机构
[1] Santa Clara Univ, Comp Sci & Engn, Internet Things Res Lab, Santa Clara, CA 95053 USA
关键词
IoT; SDN; machine learning; DDoS; OVS; INTERNET; SDN;
D O I
10.1109/COMPSAC51774.2021.00143
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
IoT devices have become popular targets for various network attacks due to their lack of industry-wide security standards. In this work, we focus on the classification of smart home IoT devices and defending them against Distributed Denial of Service (DDoS) attacks. The proposed framework protects smart homes by using VLAN-based network isolation. This architecture includes two VLANs: one with non-verified devices and the other with verified devices, both of which are managed by a SDN controller. Lightweight, stateless flow-based features, including ICMP, TCP and UDP protocol percentage, packet count and size, and IP diversity ratio, are proposed for efficient feature collection. Further analysis is performed to minimize training data to run on resource-constrained edge devices in smart home networks. Three popular machine learning models, including K-Nearest-Neighbors, Random Forest, and Support Vector Machines, are used to classify IoT devices and detect different DDoS attacks based on TCP-SYN, UDP, and ICMP. The system's effectiveness and efficiency are evaluated by emulating a network consisting of an Open vSwitch, Faucet SDN controller, and flow traces of several IoT devices from two different testbeds. The proposed framework achieves an average accuracy of 97%in device classification and 98% in DDoS detection with average latency of 1.18 milliseconds.
引用
下载
收藏
页码:1049 / 1057
页数:9
相关论文
共 50 条
  • [1] An Approach of Load Balancers for Low-cost CPPSs in Software-defined Networking Architecture
    Garcia, Marcelo V.
    Armentia, Aintzane
    Perez, Federico
    Marcos, Marga
    2019 15TH IEEE INTERNATIONAL WORKSHOP ON FACTORY COMMUNICATION SYSTEMS (WFCS), 2019,
  • [2] Securing industrial communication with software-defined networking
    Savaliya, Abhishek
    Jhaveri, Rutvij H.
    Xin, Qin
    Alqithami, Saad
    Ramani, Sagar
    Ahanger, Tariq Ahamed
    MATHEMATICAL BIOSCIENCES AND ENGINEERING, 2021, 18 (06) : 8298 - 8313
  • [3] IOTASDN: IOTA 2.0 Smart Contracts for Securing Software-Defined Networking Ecosystem
    Fartitchou, Mohamed
    Lamaakal, Ismail
    Maleh, Yassine
    El Makkaoui, Khalid
    El Allali, Zakaria
    Plawiak, Pawel
    Alblehai, Fahad
    El-Latif, Ahmed A. Abd
    SENSORS, 2024, 24 (17)
  • [4] Implementing Traffic Distribution Function of Smart OSPF in Software-Defined Networking
    Oki, Eiji
    Nakahodo, Yasunori
    Naito, Takashi
    Okamoto, Satoru
    2015 21ST ASIA-PACIFIC CONFERENCE ON COMMUNICATIONS (APCC), 2015, : 239 - 243
  • [5] Machine Learning based Software-Defined Networking Traffic Classification System
    Vulpe, Alexandru
    Girla, Ionut
    Craciunescu, Razvan
    Berceanu, Madalina Georgiana
    2021 IEEE INTERNATIONAL BLACK SEA CONFERENCE ON COMMUNICATIONS AND NETWORKING (IEEE BLACKSEACOM), 2021, : 377 - 381
  • [6] Traffic Classification in Software-Defined Networking Using Genetic Programming Tools
    Margariti, Spiridoula V.
    Tsoulos, Ioannis G.
    Kiousi, Evangelia
    Stergiou, Eleftherios
    FUTURE INTERNET, 2024, 16 (09)
  • [7] Evaluating Low-Cost Bridges for Time Sensitive Software Defined Networking in Smart Cities
    Rinaldi, Stefano
    Bonafini, Federico
    Ferrari, Paolo
    Flammini, Alessandra
    Rizzi, Mattia
    2017 IEEE INTERNATIONAL SYMPOSIUM ON PRECISION CLOCK SYNCHRONIZATION FOR MEASUREMENT, CONTROL, AND COMMUNICATION (ISPCS), 2017, : 7 - 12
  • [8] Opportunities for Software-Defined Networking in Smart Grid
    Zhang, Jianchao
    Seet, Boon-Chong
    Lie, Tek-Tjing
    Foh, Chuan Heng
    2013 9TH INTERNATIONAL CONFERENCE ON INFORMATION, COMMUNICATIONS AND SIGNAL PROCESSING (ICICS), 2013,
  • [9] Securing Smart Home Networks with Software-Defined Perimeter
    Sallam, Ahmed
    Refaey, Ahmed
    Shami, Abdallah
    2019 15TH INTERNATIONAL WIRELESS COMMUNICATIONS & MOBILE COMPUTING CONFERENCE (IWCMC), 2019, : 1989 - 1993
  • [10] A Novel Traffic Classification Approach by Employing Deep Learning on Software-Defined Networking
    Nunez-Agurto, Daniel
    Fuertes, Walter
    Marrone, Luis
    Benavides-Astudillo, Eduardo
    Coronel-Guerrero, Christian
    Perez, Franklin
    FUTURE INTERNET, 2024, 16 (05)